Skip to main content
samandeep
Staff
Staff
October 4, 2024

Technical Tip: Configure to block Severity-Based Application signatures in Application Control UTM

  • October 4, 2024
  • 0 replies
  • 1105 views
Description This article describes how to block application signatures based on the Risk severity of the application.
Scope FortiGate v7.x.x.
Solution

To achieve this:

 

severity.png

 

  1. Go to 'Security Profiles'.
  2. Select 'Application Control'. 
  3. Select the Existing or the 'New' Application Sensor for this configuration.
  4. Create 'New Override' under 'Application and Filter Overrides'.
  5. Select type 'Filter' and Action 'Block' 
  6. Hit '+' to add values
  7. Under the 'RISK' entry, Entries should be selected based on the requirement.
  8. Press 'OK' to make that save.

 

application control.png

 

  1. Press 'OK' to make that save for the application sensor.

 

To block application signatures by severity, ensure the Application Sensor is enabled in the relevant Firewall-policy configuration.

 

Related document:

Basic category filters and overrides